Matches in SemOpenAlex for { <https://semopenalex.org/work/W4308643089> ?p ?o ?g. }
Showing items 1 to 81 of
81
with 100 items per page.
- W4308643089 abstract "Self-supervised learning is an emerging machine learning (ML) paradigm. Compared to supervised learning which leverages high-quality labeled datasets, self-supervised learning relies on unlabeled datasets to pre-train powerful encoders which can then be treated as feature extractors for various downstream tasks. The huge amount of data and computational resources consumption makes the encoders themselves become the valuable intellectual property of the model owner. Recent research has shown that the ML model's copyright is threatened by model stealing attacks, which aim to train a surrogate model to mimic the behavior of a given model. We empirically show that pre-trained encoders are highly vulnerable to model stealing attacks. However, most of the current efforts of copyright protection algorithms such as watermarking concentrate on classifiers. Meanwhile, the intrinsic challenges of pre-trained encoder's copyright protection remain largely unstudied. We fill the gap by proposing SSLGuard, the first watermarking scheme for pre-trained encoders. Given a clean pre-trained encoder, SSLGuard injects a watermark into it and outputs a watermarked version. The shadow training technique is also applied to preserve the watermark under potential model stealing attacks. Our extensive evaluation shows that SSLGuard is effective in watermark injection and verification, and it is robust against model stealing and other watermark removal attacks such as input noising, output perturbing, overwriting, model pruning, and fine-tuning." @default.
- W4308643089 created "2022-11-13" @default.
- W4308643089 creator A5002440210 @default.
- W4308643089 creator A5022802322 @default.
- W4308643089 creator A5074889369 @default.
- W4308643089 date "2022-11-07" @default.
- W4308643089 modified "2023-09-23" @default.
- W4308643089 title "SSLGuard" @default.
- W4308643089 cites W2535690855 @default.
- W4308643089 cites W2579318729 @default.
- W4308643089 cites W2807363941 @default.
- W4308643089 cites W2963564844 @default.
- W4308643089 cites W2990980946 @default.
- W4308643089 cites W3102111060 @default.
- W4308643089 cites W3189812816 @default.
- W4308643089 cites W3212600502 @default.
- W4308643089 cites W4288057808 @default.
- W4308643089 doi "https://doi.org/10.1145/3548606.3559355" @default.
- W4308643089 hasPublicationYear "2022" @default.
- W4308643089 type Work @default.
- W4308643089 citedByCount "3" @default.
- W4308643089 countsByYear W43086430892023 @default.
- W4308643089 crossrefType "proceedings-article" @default.
- W4308643089 hasAuthorship W4308643089A5002440210 @default.
- W4308643089 hasAuthorship W4308643089A5022802322 @default.
- W4308643089 hasAuthorship W4308643089A5074889369 @default.
- W4308643089 hasConcept C108010975 @default.
- W4308643089 hasConcept C108583219 @default.
- W4308643089 hasConcept C111919701 @default.
- W4308643089 hasConcept C115961682 @default.
- W4308643089 hasConcept C117797892 @default.
- W4308643089 hasConcept C118505674 @default.
- W4308643089 hasConcept C119857082 @default.
- W4308643089 hasConcept C138885662 @default.
- W4308643089 hasConcept C150817343 @default.
- W4308643089 hasConcept C153180895 @default.
- W4308643089 hasConcept C154945302 @default.
- W4308643089 hasConcept C15744967 @default.
- W4308643089 hasConcept C164112704 @default.
- W4308643089 hasConcept C2776401178 @default.
- W4308643089 hasConcept C41008148 @default.
- W4308643089 hasConcept C41895202 @default.
- W4308643089 hasConcept C542102704 @default.
- W4308643089 hasConcept C6557445 @default.
- W4308643089 hasConcept C86803240 @default.
- W4308643089 hasConceptScore W4308643089C108010975 @default.
- W4308643089 hasConceptScore W4308643089C108583219 @default.
- W4308643089 hasConceptScore W4308643089C111919701 @default.
- W4308643089 hasConceptScore W4308643089C115961682 @default.
- W4308643089 hasConceptScore W4308643089C117797892 @default.
- W4308643089 hasConceptScore W4308643089C118505674 @default.
- W4308643089 hasConceptScore W4308643089C119857082 @default.
- W4308643089 hasConceptScore W4308643089C138885662 @default.
- W4308643089 hasConceptScore W4308643089C150817343 @default.
- W4308643089 hasConceptScore W4308643089C153180895 @default.
- W4308643089 hasConceptScore W4308643089C154945302 @default.
- W4308643089 hasConceptScore W4308643089C15744967 @default.
- W4308643089 hasConceptScore W4308643089C164112704 @default.
- W4308643089 hasConceptScore W4308643089C2776401178 @default.
- W4308643089 hasConceptScore W4308643089C41008148 @default.
- W4308643089 hasConceptScore W4308643089C41895202 @default.
- W4308643089 hasConceptScore W4308643089C542102704 @default.
- W4308643089 hasConceptScore W4308643089C6557445 @default.
- W4308643089 hasConceptScore W4308643089C86803240 @default.
- W4308643089 hasFunder F4320335777 @default.
- W4308643089 hasLocation W43086430891 @default.
- W4308643089 hasOpenAccess W4308643089 @default.
- W4308643089 hasPrimaryLocation W43086430891 @default.
- W4308643089 hasRelatedWork W1535763754 @default.
- W4308643089 hasRelatedWork W2019986539 @default.
- W4308643089 hasRelatedWork W2063539906 @default.
- W4308643089 hasRelatedWork W2092308181 @default.
- W4308643089 hasRelatedWork W2148524099 @default.
- W4308643089 hasRelatedWork W2349741118 @default.
- W4308643089 hasRelatedWork W2358156753 @default.
- W4308643089 hasRelatedWork W2579318729 @default.
- W4308643089 hasRelatedWork W2792664837 @default.
- W4308643089 hasRelatedWork W3165255230 @default.
- W4308643089 isParatext "false" @default.
- W4308643089 isRetracted "false" @default.
- W4308643089 workType "article" @default.